Cyber Risk and Compliance Lead

Date: 30 Dec 2025

Location: AU

Company: Woodside Energy Ltd

About Woodside Energy

 

We know great results come from our people feeling valued, getting the support they need to reach their full potential as well as bring their whole self to work. We also recognise that enduring, meaningful relationships with communities are fundamental to maintaining our licence to operate.

 

Technology and innovation are essential to our long-term sustainability. We are growing our carbon and new energy businesses using technology to reduce emissions and the carbon footprint of our products. We are working to improving energy efficiency, offset emissions, reduce emissions intensity and explore options for lower-carbon energy. Woodside led the development of the LNG industry in Australia and is applying this same pioneering spirit to solving future energy challenges.

 

Our global headquarters are based in Perth and our state-of-the-art campus reflects the quality of life Perth is known for - with a six Green Star rating, advanced wellness features and flexibility in how you work.

 

About the Role:

 

Reporting to Cyber Risk and Compliance Manager (Australia) this role will contribute as a key thought leader part of Woodside’s global Cyber Risk and Compliance team. The key purpose of this role is to ensure Cyber Risk, Compliance and regulatory compliance are robust, cohesive, fit for purpose, continuously improving, and meeting stakeholder expectations.

 

 

This role will be based in Perth, Western Australia, and offers a unique opportunity to drive strong team performance, a values-aligned culture, and the growth of talent.

 

Duties & Responsibilities:

 

As the Lead, you will provide operational oversight of Cyber Risk and Compliance services and capabilities (People, Process, and Technology) 

 

  • Governance forums, processes, and reporting linked to relevant activities
  • Risk and compliance assessment processes
  • Ongoing cyber assurance planning, scoping and coordination included regulatory obligations
  • Advisory and internal consulting relating to implementing standards and requirements
  • Supplier cyber risk management and assurance
  • Cyber security control design and operating standards, testing and verification

 

On a day-to-day basis this will involve:

  • Provide ad-hoc delivery support as required to meet key deadlines (e.g. cyber security risk and compliance assessments, cyber assurance and audit activities, regulatory activities etc.)
  • Build and maintain effective working relationships with global Cyber Security and Digital peers, and key business stakeholders
  • Act as the key point for escalations and conflict resolution
  • Deliver impactful content and presentations for key communications as required

The Lead also provides structure for the broader team by fostering a collaborative and psychologically safe environment, plan and schedule resources aligned with priorities, coach team members, and perform development planning and performance management activities.

 

Skills & Experience:

 

We are seeking someone who brings a strategic mindset combined with the ability to balance tactical uplift with long-term vision.

You will bring relevant Cyber Security or Computer Science tertiary degree (or equivalent qualification). Additional industry recognised certifications relevant to cyber security, governance risk and compliance, audit, etc. (e.g. CISSP, CCSP, CISM, CISA) would be highly regarded but not essential.

You will be able to demonstrate considerable experience involving relevant domains (cyber security, governance risk and compliance, audit, etc.). Previous experience in a formal leadership role with people management responsibilities is also highly regarded.

Desirable: Experience working with Operational Technology / Industrial Control Systems

 

This role invovles a lot of engagement with internal and external stakeholders, so we are seeking exceptional written and verbal communication, with the ability to influence without authority and engage effectively with stakeholders at all organisational levels.

Demonstrated experience developing strong, trusted relationships across Digital, business units, and external partners.

Strong requirements-gathering and analytical skills, able to convert business and operational needs into actionable security architecture outcomes.

Proven ability to succinctly communicate complex cyber risks and design considerations to non-technical stakeholders and leadership.

 

If you think you can do this job but don’t meet all the criteria, that’s OK! Please apply. At Woodside, we value people with diverse experiences and backgrounds, as they provide unique perspectives that help us innovate.

 

Recognition & Reward:

 

What you can expect from us:

  • Commitment to your ongoing development, including on-the-job opportunities, formal programs, coaching and mentoring
  • Industry-leading 18 weeks’ paid parental leave for primary carer, and maintenance of superannuation or retirement benefits at the current rate during any period of unpaid parental leave for up to 24 months (plus secondary carer leave entitlements)
  • Values led culture
  • Active employee community groups for gender equality, reconciliation between Indigenous and non-Indigenous Australians, and LGBTI+ staff and allies, and Neurodiversity
  • Community volunteering opportunities
  • A competitive remuneration package featuring performance-based incentives and above-industry superannuation contributions

 

Woodside is committed to fostering an inclusive and diverse workforce culture, which is supported by our Values. Our aim is to attract, develop and retain a truly diverse and high-performing workforce. 

Diversity encompasses differences in age, nationality, race, ethnicity, national origin, religious beliefs, sex, sexual orientation, intersex status, gender identity or expression, relationship status, disability, neurodiversity, cultural background, thinking styles, experience, family background, including caregiving commitments, and education. Inclusion centres on all employees creating a climate of trust and belonging, where people feel comfortable to bring their whole self to work.

We encourage applications from Aboriginal and Torres Strait Islander people and those seeking a more flexible working environment.

 

Click APPLY to submit your application. Applications close at 11:59pm AWST on Thursday 8th January 2026.

 

Please note Woodside Energy will only accept direct candidate applications. We do not accept applications from Recruitment Agencies.